AMD Secure Processor Boot Loader OOB Write via Unsanitized Input
CVE-2025-29949 Published on February 10, 2026
Insufficient input parameter sanitization in AMD Secure Processor (ASP) Boot Loader (legacy recovery mode only) could allow an attacker to write out-of-bounds to corrupt Secure DRAM potentially resulting in denial of service.
Weakness Type
What is a Memory Corruption Vulnerability?
The software writes data past the end, or before the beginning, of the intended buffer. Typically, this can result in corruption of data, a crash, or code execution. The software may modify an index or perform pointer arithmetic that references a memory location that is outside of the boundaries of the buffer. A subsequent write operation then produces undefined or unexpected results.
CVE-2025-29949 has been classified to as a Memory Corruption vulnerability or weakness.
Affected Versions
AMD Ryzen™ 4000 Series Mobile Processors with Radeon™ Graphics:- Version RenoirPI-FP6_1.0.0.Ec is unaffected.
- Version RembrandtPI-FP7_1.0.0.BD is unaffected.
- Version PicassoPI-FP5_1.0.1.2c is unaffected.
- Version PhoenixPI-FP8-FP7_1.2.0.B is unaffected.
- Version MendocinoPI-FT6_1.0.0.7c is unaffected.
- Version ComboAM4v2PI_1.2.0.F is unaffected.
- Version ChagallWSPI-sWRX8 1.0.0.C is unaffected.
- Version CastlePeakWSPI-sWRX8 1.0.0.H is unaffected.
- Version CezannePI-FP6_1.0.1.1c is unaffected.
- Version CastlePeakPI-SP3r3_1.0.0.F is unaffected.
- Version ChagallWSPI-sWRX8 1.0.0.C is unaffected.
- Version CezannePI-FP6_1.0.1.1c is unaffected.
- Version CezannePI-FP6_1.0.1.1c is unaffected.
- Version ComboAM4v2PI_1.2.0.F is unaffected.
- Version ComboAM4v2PI_1.2.0.F is unaffected.
- Version ComboAM4v2PI_1.2.0.F is unaffected.
- Version ComboAM4 1.0.0.F is unaffected.
- Version PhoenixPI-FP8-FP7_1.2.0.B is unaffected.
- Version PicassoPI-FP5_1.0.1.2c is unaffected.
- Version RembrandtPI-FP7_1.0.0.BD is unaffected.
- Version EmbeddedPI-FP5 1211 is unaffected.
- Version EmbeddedR2KPI-FP5 1006 is unaffected.
- Version EmbeddedPI-FP5 1211 is unaffected.
- Version EmbeddedPhoenixPI-FP7r2_1.0.0.2 is unaffected.
- Version EmbeddedPI-FP6_1.0.0.D is unaffected.
- Version EmbeddedPI-FP7r2_1.0.0.C is unaffected.
Exploit Probability
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.